The Ultimate Open-Source Security Arsenal for Hackers, Enterprises, and AI Agents——面向极客、企业与 AI 智能体的全域开源网络安全工具矩阵
-
Updated
Sep 24, 2026
The Ultimate Open-Source Security Arsenal for Hackers, Enterprises, and AI Agents——面向极客、企业与 AI 智能体的全域开源网络安全工具矩阵
Whitebox & Blackbox AI red-teaming framework for LLMs & Agentic AI apps. It analyzes your app's source code to discover tools, roles, and guardrails, then generates new attacks chains across several categories and adapts over multiple multi turn rounds to find vulnerabilities
Zero-dependency Web Crypto suite & Model Context Protocol (MCP) server for AES-256-GCM, RSA-4096, and AI agent security.
reconnaissance for agent attack surfaces
splyntra
Open-source access layer for coding agents. Scoped secrets, APIs, tools, files, and dependencies for Claude Code, Codex, Cursor, and more.
🛡️ Open-source AI security scanner & LLM red-teaming platform. Test LLM APIs, chatbots, agents, MCP servers & RAG for prompt injection, jailbreaks, data leaks & unsafe tool use — with OWASP LLM Top 10 mapping and plain-English, audit-ready reports.
Manual Verification Protection + AI Selector Compatible with OpenClaw . This is a complete TypeScript plugin project—a true implementation of the `before_tool_call` hook that can intercept tool calls, follow OpenClaw’s built-in approval workflow, and features an approval window mechanism.
Evidence-first security review for agent repositories: source-linked findings, suggested fixes, drift checks, and least-privilege launch plans.
A free course on AI agent security: prompt injection, tool poisoning, memory attacks, MCP supply chain, CaMeL, information-flow control, sandboxing and red-teaming. 27 chapters, runnable Python, interactive labs, six projects.
Runtime capability governance for AI agents. Kingpin separates what an agent notices or believes from what it is authorized to do, using scoped leases, human review, retry controls, prompt-injection handling, and deterministic audit behavior.
A plugin-native security scanner for DeepSeek Harness that detects capability escalation, config hijacking, prompt injection, dangerous code, and self-modifying behavior.
AgentRiskBOM provides a security bill of materials for reviewing the delegated authority of tool-using AI agents.
Daedalab is a control layer for AI agents that intercepts tool calls, blocks dangerous actions, enforces spending limits, and keeps a complete audit trail, giving users control over what their agents can do before it happens.
Deterministic guards and web tools for AI agents (MCP + HTTP APIs)
Open-source static security analysis for agentic systems, with dependency graphs, capability tracing, MCP analysis and attack-path detection.
To associate your repository with the agent-security-tools topic, visit your repo's landing page and select "manage topics."